
This lecture introduces the FortiGate firewall and Fortinet, explains why firewall skills are in demand, and discusses lab practice and router comparisons.
Understand how FortiGate firewalls use a state table to track source and destination IPs, ports, and session IDs, enabling bidirectional traffic with a single policy.
Discover how FortiGate firewall hardware uses ACE chips to boost performance, with low cost and a single vendor, while previewing FortiManager and FortiAnalyzer integration in the hands-on lab.
Master FortiGate fundamentals through hands-on labs, learning FortiGate unified threat management, FortiGuard updates, FortiAnalyzer and FortiManager usage, high-availability topologies, and VPN configurations for real-world security.
Explore FortiGate firewall hardware and models, with a focus on the 1800F high-end device, its 16 Ethernet and SFP ports, console, USB, default management IP 192.168.1.99, and high availability.
Discover how FortiGate uses dedicated chips, the network processor and content processor, to offload traffic and keep CPU and memory free for utm features in a lab topology.
Identify FortiGate setup and interface details using get system status and get system interface, and understand DHCP-based port one IP assignment, ARP, and routing basics to verify connectivity.
Master FortiGate firewall lab setup by configuring interface IPs, enabling access, and saving changes using FortiGate commands, with autosave simplifying configuration compared to Cisco.
Set up a FortiGate firewall lab by configuring interfaces, assigning port one and port two with manual and dhcp addresses, and saving the running configuration.
Explore FortiGate configuration basics, including interface setup, IP addressing, backups, encryption, and restoration, plus using revisions to track changes in a hands-on lab.
Explore Fortigate administrator roles, login restrictions, and access controls. Configure local and super admin profiles, assign read/write permissions, enforce trusted host logins, and review event logs to secure firewall management.
FortiGate routing uses a default gateway and static or policy routes, with policy routes taking precedence; configure via DHCP or manual gateway, and apply firewall policy for internet access.
Explore how FortiGate firewall NAT configurations work using outgoing interface or IP pool for source NAT, translating private to public addresses, and how logging and firewall policies capture forward traffic.
Learn FortiGate firewall basics from lab-ready cli access and login procedures to configuring interfaces, while understanding NAT versus transparent modes, backups, and virtual domains.
Learn to configure a FortiGate firewall from the GUI and CLI, set the default management IP, enable ping and HTTP/HTTPS, and manage interfaces, aliases, and basic implicit-deny policies.
Explore how to create FortiGate firewall policies with naming and common sections, covering incoming and outgoing interfaces, source and destination addresses, and services, plus NAT and policy order.
Discover FortiGate interfaces and DNS options, log in as an administrator, and explore administrator profiles and privileges in a hands-on lab with dashboard insights and CLI and GUI setup.
Explore FortiGate firewall login and dashboard customization, including trusted-host restrictions, login event logs, and admin profile controls for various administrator roles.
Learn Fortigate NSE Class 7 Part C: admin profile management, login reports, and creating admin profiles; configure VLAN, loopback, and software switch interfaces, implement interface zones, and firewall policies.
Master FortiGate firewall policies across zones and interfaces, including zone to zone, interface to zone, intra-zone and virtual interfaces, with DNS, DHCP, and configuration save/backup guidance.
Learn to configure static and policy routes on FortiGate, understand precedence, and use DHCP or specify gateways, plus internet service filters for sites like amazon or adobe.
Configure policy routes to apply to TCP traffic based on source and destination ports, with stop policy routing and forward options, and fallback to static routes for non matching traffic.
Learn how to implement mac address policy on FortiGate, create address objects and groups, and configure local policy for management traffic and data plane control.
Explore FortiGate firewall policies and local policies for data vs management traffic, compare static and policy routes, and review routing concepts and essential CLI commands.
Explore FortiGate web filtering to block or allow sites like Google, Facebook, and YouTube. Compare category based filtering with the URL filter, and note 15-day valuation license limits.
Block facebook.com with FortiGate web and url filtering inside a firewall policy, verify results through logs, and compare flow-based versus proxy-based filtering.
Explore Fortigate web filtering and policy configuration in NSE class 10 part A, including category-based and static URL filtering, while troubleshooting browser cache effects on access logs and IPS signatures.
Explore intrusion, ethical hackers vs. intruders, and intrusion prevention on the FortiGate firewall, with signatures that detect and block illegal access.
Block ICMP ping with a custom Fortigate IP signature, apply it to the IPS profile, and monitor logs and sessions to verify the intrusion prevention works.
Description
The Network Security Professional designation recognizes your ability to install and manage the day-to-day configuration, monitoring, and operation of a FortiGate device to support specific corporate network security policies.
Fortinet NSE 4: What You Need to Know
This NSE 4 training covers Fortinet NSE 4 - FortiOS advanced security practices exam objectives, including these topics:
Deploying and configuring FortiGate security devices onto a network
Configuring firewall policies, NAT, and authentication with FortiGate devices
Using FortiGate inspection modes to encrypt and inspect traffic
Optimizing switching and routing through configuring FortiGate devices
Who Should Take Fortinet NSE 4 Training?
This NSE 4 training is considered professional-level Fortinet training, which means it was designed for security technicians. This advanced security practices skills course is designed for security technicians with three to five years of experience with advanced security practices.
New or aspiring security technicians. This NSE 4 training is perfect for new security technicians who know they'll be working with FortiGate tech in their first job. The worst outcome for a brand new technician would be to get to your first job and realize your general knowledge doesn't apply to specialized technology. This NSE 4 training makes sure you're not caught in that bad situation, if you know your job uses FortiGate.
Experienced security technicians. If you've already been working as a security technician, this NSE 4 training is a good choice for you if you might need to use FortiGate devices in the near future. Even with your years of experience, transitioning to FortiGate can be difficult. This NSE 4 training makes sure everything you've learned and mastered in cybersecurity administration gets translated into FortiGate's language.
Why should you take this Fortinet NSE 4 training?
You should take this Fortinet NSE 4 training if you need to know how to administer the network security technology that's found on a Fortinet network. If you work with FortiGate devices – or want to – after this course you'll be completely at ease with configuring, installing, managing and operating them.